By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: CISA warns of actively exploited Linux privilege elevation flaw
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > CISA warns of actively exploited Linux privilege elevation flaw
Tech News

CISA warns of actively exploited Linux privilege elevation flaw

By admin 3 Min Read
Share
SHARE

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has added two vulnerabilities in its Known Exploited Vulnerabilities (KEV) catalog, including a Linux kernel privilege elevation flaw.

The high-severity flaw tracked as CVE-2024-1086 was first disclosed on January 31, 2024, as a use-after-free problem in the netfilter: nf_tables component, but was first introduced by a commit in February 2014.

Netfilter is a framework provided by the Linux kernel that allows various networking-related operations, such as packet filtering, network address translation (NAT), and packet mangling.

The vulnerability is caused because the ‘nft_verdict_init()’ function allows positive values to be used as a drop error within the hook verdict, causing the ‘nf_hook_slow()’ function to execute a double free when NF_DROP is issued with a drop error that resembles NF_ACCEPT.

Exploitation of CVE-2024-1086 allows an attacker with local access to achieve privilege escalation on the target system, potentially gaining root-level access.

The issue was fixed via a commit submitted in January 2024, which rejects QUEUE/DROP verdict parameters, thus preventing exploitation.

The fix has been backported to multiple stable kernel versions as listed below:

  • v5.4.269 and later
  • v5.10.210 and later
  • v6.6.15 and later
  • v4.19.307 and later
  • v6.1.76 and later
  • v5.15.149 and later
  • v6.7.3 and later

In late March 2024, a security researcher using the alias ‘Notselwyn’ published a detailed write-up and proof-of-concept (PoC) exploit on GitHub, showcasing how to achieve local privilege escalation by exploiting the flaw on Linux kernel versions between 5.14 and 6.6.

Diagram

While most Linux distrobutions pushed out fixes fairly quickly, Red Hat had not pushed out a fix until March, making it possible that threat actors used the public exploit on compromised systems.

CISA did not share specific details about how the vulnerability is exploited, but BleepingComputer has seen posts on hacking forums about the public exploits.

The cybersecurity agency has now given federal agencies until June 20, 2024, to apply the available patches.

If updating is not possible, admins are recommended to apply the following mitigations:

  1. Blocklist ‘nf_tables’ if it’s not needed/actively used.
  2. Restrict access to user namespaces to limit the attack surface.
  3. Load the Linux Kernel Runtime Guard (LKRG) module (can cause instability)

The second flaw CISA added on the KEV catalog this time, also setting the due date to June 20, is CVE-2024-24919, an information disclosure vulnerability impacting VPN devices from Check Point.

Following the vendor’s disclosure and security update release for this flaw, researchers from Watchtowr Labs published their analysis, underlining that the vulnerability is far worse than what Check Point’s bulletin reflected.

You Might Also Like

See, Think, Explain: The Rise of Vision Language Models in AI

Deloitte to create 500 Belfast-based tech jobs

DOGE Loses Battle to Take Over USIP—and Its $500 Million Headquarters

RVTools Official Site Hacked to Deliver Bumblebee Malware via Trojanized Installer

Acer FreeSense Ring Launched to Rival Samsung & Oura

TAGGED: Actively Exploited, CISA, Linux, Linux Kernel, Use After Free, Vulnerability
Share This Article
Facebook Twitter Copy Link
Previous Article US Lawmakers Invite Israel PM Benjamin Netanyahu To Address Congress Amid Gaza War
Next Article Sony Days of Play Sale: Consoles, Games, and More
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

Bitcoin Dominance Chart Remains Very High Despite Crash, What This Means For Altcoins
Crypto
Billie Eilish Tour: See Dates, Cities & Ticket Prices
Celebrity
The next great job churn is already starting
Business
Overwatch 2 x Street Fighter 6 Trailer Showcases Upcoming Cosmetics and Emotes
Gaming News
See, Think, Explain: The Rise of Vision Language Models in AI
Tech News
Pope Francis: Key dates in the life of the first Latin American pontiff
World News
Ubisoft Explains Why You Can't Kill Animals In Assassin's Creed Shadows
Gaming News

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

Bitcoin Dominance Chart Remains Very High Despite Crash, What This Means For Altcoins

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
Bitcoin Dominance Chart Remains Very High Despite Crash, What This Means For Altcoins
May 19, 2025
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?